CVE-2024-3094 is a critical security vulnerability discovered in the upstream tarballs of the xz utility, starting with version 5.6.0. This vulnerability involves malicious code that, through complex obfuscations, manipulates the build process of liblzma.
This repo is to help you find if xz
is vulnerable in your system and to fix this automatically.
$ python3 detect.py